The Information Machine

US Government Export Control Directive Suspends Fable 5 and Mythos 5 for Foreign Nationals · history

Version 16

2026-06-21 18:16 UTC · 313 items

What

Fable 5 and Mythos 5 remain offline on June 21 — nine days since Anthropic disabled them globally [21][22]. The Pentagon has separately labeled Anthropic a 'supply chain risk' effective immediately [16], adding a DoD designation on top of the BIS export licensing requirement Commerce Secretary Lutnick formalized on June 17 [5]. President Trump stated on June 20 he no longer views Anthropic as a national security threat [15], but no formal reversal has followed, and the refund window for API usage credits has closed [18].

Why it matters

The Pentagon supply chain risk designation adds a second institutional front — DoD procurement risk on a distinct legal track from the BIS export licensing controls — while Trump's public softening remains detached from any formal policy reversal. Companies and international teams that moved to non-US AI providers or open-weight models during the nine-day outage are making structural decisions that are difficult to undo regardless of how the political question resolves.

Open questions

  • Trump stated on June 20 he no longer views Anthropic as a national security threat [15] — does this translate into formal action lifting the BIS licensing requirement and the Pentagon supply chain risk designation [16], or does it remain a public signal without policy follow-through?

  • The Pentagon has labeled Anthropic a 'supply chain risk' effective immediately [16] — when did this designation take effect relative to the BIS action, what specific DoD contracts or procurement does it affect, and does it operate independently of any eventual BIS reinstatement?

  • A single-sourced report suggests a reinstatement path via benchmark failure-rate tests rather than jailbreak elimination [23] — has this been corroborated, and does it represent a formal administration position or informal signaling?

  • Milk Road AI attributes the underlying conflict to Amodei's non-negotiable refusal to allow Claude for lethal applications [14] — which specific issue must be resolved for reinstatement: the jailbreak, the use-case policy, or both?

Narrative

On June 12, 2026, the US Commerce Department issued a directive requiring Anthropic to suspend Fable 5 and Mythos 5 for all foreign nationals, citing a jailbreak that bypassed classifier-based safeguards for cybersecurity, chemistry, and biology prompts [1]. Amazon researchers demonstrated the jailbreak, and Amazon CEO Andy Jassy personally briefed senior Trump administration officials in conversations that reporting confirms directly preceded the government action — against a company in which Amazon holds a major investment [2][3]. Unable to restrict access by nationality on short notice, Anthropic disabled both models globally on June 13 [1]. Commerce Secretary Lutnick told Amodei, when Amodei said the directive meant the models must go offline: 'That's the point' [4]. On June 17, Lutnick formally sent Amodei a BIS letter placing both models under export licensing requirements [5].

The technical basis for the directive is contested by independent experts. Katie Moussouris, the only outside expert given access to the government's report, assessed the triggering scenario — researchers used engineered code with deliberately planted fake vulnerabilities to extract patch-testing scripts through a multistep manual process — as 'the model working as intended' for cyberdefense [6][4]. Her firm Luta Security published a formal argument that the controls harm US cyber defense [7]. Zvi Mowshowitz argues the stated reinstatement path — fix the jailbreak — is technically impossible, since vulnerability identification and secure coding cannot be separated [8]. Research published in June 2026 confirms this: perfect jailbreak immunity is not achievable for any LLM [9]. Washington talks concluded June 16 without controls lifted; the US refused G7 allies and UK AISI special access [10][11].

The political dimension is explicit across multiple sources. An administration source framed reinstatement as requiring an 'attitude adjustment' rather than a specific technical fix [12], and multiple sources confirm the shutdown was partly motivated by political hostility toward Anthropic's leadership [4][13]. Milk Road AI frames the conflict as Amodei's consistent, non-negotiable refusal to allow Claude for lethal applications [14]. On June 20, Trump said in an Axios interview that he no longer views Anthropic as a national security threat, while acknowledging he had done so 'a week ago' [15] — but Lutnick's BIS letter remains active with no announced policy reversal. The Pentagon has separately labeled Anthropic a 'supply chain risk' effective immediately [16], extending the government's posture beyond Commerce Department controls into DoD procurement on a distinct legal track.

Nine days into the global outage, Alex Stamos reported that companies are signing backup contracts with non-US AI providers and deploying open-weight models in response to demonstrated US government political risk [4]. International teams, including Canadian operations, received no advance warning before access was cut [17], and the refund window for API usage credits has since closed [18]. Technology and national security leaders have characterized the situation as a 'messy public breakup' that harms both parties [19], and Nathan Lambert has argued the episode opens a governance era of technically shallow, politically motivated AI restrictions that open-source advocates are unprepared for [20].

Timeline

  • 2026-06-12: Anthropic publicly releases Fable 5 and Mythos 5. [32][33]
  • 2026-06-12: Amazon researchers demonstrate a jailbreak on Fable 5; Amazon CEO Andy Jassy briefs senior Trump administration officials whose conversations directly preceded the government action. [2][3][26]
  • 2026-06-12: White House issues Anthropic a 90-minute takedown ultimatum with no stated details on the actual threat. [13]
  • 2026-06-12: US Commerce Department issues an export control directive requiring Anthropic to suspend Fable 5 and Mythos 5 for all foreign nationals, citing the classifier-based jailbreak. [24][25][1]
  • 2026-06-12: Commerce Secretary Lutnick tells Anthropic CEO Amodei 'That's the point' when Amodei says the directive means the models must go offline. [4]
  • 2026-06-13: Anthropic disables Fable 5 and Mythos 5 globally after determining nationality-based restriction was not achievable on short notice. [1]
  • 2026-06-14: Nathan Lambert argues the episode opens a governance era of technically shallow, politically motivated AI restrictions and warns open-source advocates are unprepared for similar controls within two years. [20]
  • 2026-06-15: Semafor reports a China-linked group had accessed Mythos before the directive, raising model distillation concerns as a distinct driver of the government's action. [29]
  • 2026-06-15: Anthropic meets with the Commerce Department; an administration source says reinstatement requires an 'attitude adjustment' rather than a specific technical fix. [12]
  • 2026-06-16: Katie Moussouris assesses the triggering behavior as 'the model working as intended' for cyberdefense; Luta Security publishes a formal argument that the controls harm US cyber defense. [6][7]
  • 2026-06-16: Anthropic's Washington talks conclude without controls lifted; US refuses G7 allies and UK AISI special access. [10][11]
  • 2026-06-17: Commerce Secretary Lutnick sends a formal BIS letter to Anthropic CEO Amodei requiring a license before international export. [5]
  • 2026-06-17: Alex Stamos reports companies are signing backup contracts with non-US AI providers and deploying open-weight models in response to demonstrated US government political risk. [4]
  • 2026-06-18: Zvi Mowshowitz argues the government's stated reinstatement path — fixing the jailbreak — is technically impossible, since vulnerability identification and secure coding are inseparable. [8]
  • 2026-06-19: Research confirms perfect jailbreak immunity is not achievable for any LLM, deepening expert consensus that the government's stated fix path has no solution. [9]
  • 2026-06-19: Zvi Mowshowitz's capabilities review confirms Fable 5 as state-of-the-art across benchmarks, with GPQA Diamond at 94%. [28]
  • 2026-06-20: In an Axios interview, President Trump states he no longer views Anthropic as a national security threat, while acknowledging he had held that view 'a week ago.' [15][14]
  • 2026-06-20: Technology and national security leaders publicly characterize the dispute as a 'messy public breakup' that harms both parties. [19]
  • 2026-06-21: Pentagon labels Anthropic a 'supply chain risk' effective immediately, adding a DoD designation alongside the BIS export licensing controls. [16]
  • 2026-06-21: Fable 5 and Mythos 5 remain offline on Day 9; the refund window for API usage credits has closed and international teams report they received no advance warning. [21][22][18][17]

Perspectives

Anthropic

Complying under legal obligation while contesting the directive as technically disproportionate; Washington talks concluded June 16 without reinstatement and the formal BIS letter remains in place.

Evolution: Consistent on technical contest; any reinstatement path involves political accommodation. A single-sourced report of a benchmark-based reinstatement path remains unconfirmed.

Trump / White House

Trump stated on June 20 he no longer views Anthropic as a national security threat; an administration source separately framed reinstatement as requiring an 'attitude adjustment.'

Evolution: Publicly softened from the June 12 national security threat framing; Trump's statement diverges from the formal BIS licensing action Lutnick signed June 17 and the Pentagon's supply chain risk designation, with no announced policy change.

Commerce Department / Secretary Lutnick

Escalated from informal directive to formal BIS licensing requirement; 'that's the point' exchange confirms model suspension was the intended outcome; refused G7 allies and UK AISI access.

Evolution: Consistent on enforcement; his formal actions remain in place even as Trump's public statements have softened.

Pentagon / Department of Defense

Labeled Anthropic a 'supply chain risk' effective immediately, adding a DoD procurement designation alongside the BIS export licensing controls.

Evolution: New institutional actor; the supply chain risk label is a distinct action from the Commerce BIS controls and operates on a different legal track.

Amazon / Andy Jassy

Amazon researchers identified and demonstrated the jailbreak; Jassy personally briefed administration officials in conversations that directly preceded the government action against a company in which Amazon holds a major investment.

Evolution: Consistent; proximate causal role confirmed.

Luta Security / Katie Moussouris

The triggering scenario used deliberately planted fake CVEs on engineered code and is 'the model working as intended' for cyberdefense; published a formal argument that the controls harm US cyber defense.

Evolution: Consistent.

Zvi Mowshowitz

Directive is technically incoherent and politically driven; the stated reinstatement path is technically impossible since vulnerability identification and secure coding are inseparable; Fable 5 is state-of-the-art on benchmarks with GPQA Diamond at 94%.

Evolution: Consistent; June 18-19 work sharpened the technical impossibility argument and added capabilities context without changing the core critique.

Nathan Lambert / Semafor / technology and national security leaders

Lambert argues the episode opens a governance era of technically shallow, politically motivated AI restrictions; Semafor reports China-linked Mythos access as a distinct government concern; technology and national security leaders call the dispute a 'messy public breakup' that harms both parties.

Evolution: The external observer coalition has broadened from Lambert and Semafor to include named technology and national security figures characterizing the situation as mutually damaging.

Tensions

  • Anthropic, Moussouris, and Luta Security assess the triggering behavior as standard defensive security work on engineered fake code; the government treated it as justifying full model suspension and formal BIS licensing without publicly addressing the expert counter-assessment. [6][7][4][24][5]
  • Trump publicly stated he no longer views Anthropic as a national security threat; Lutnick's formal BIS letter of June 17 remains in force and the Pentagon has separately labeled Anthropic a supply chain risk, leaving Trump's public softening and the formal legal posture in divergence. [15][5][14][16]
  • Sacks frames the directive as a targeted patch request with a clear reinstatement path; Zvi argues the stated fix is technically impossible and research confirms perfect jailbreak immunity is unachievable; Lutnick's 'that's the point' exchange and the administration source's 'attitude adjustment' framing indicate the actual standard is political accommodation, not a technical bar. [27][4][12][5][8][9]
  • Zvi argues the action was driven partly by political hostility toward Anthropic's leadership; Milk Road AI attributes it to Amodei's non-negotiable refusal to allow lethal Claude use; the government's public framing emphasizes the jailbreak and Chinese model distillation risk. [4][13][14][24][29]
  • Lambert predicts open-source AI models will face comparable government restrictions within two years; Just Security argues such extensions would not advance US competitive interests given cheaper Chinese alternatives already in enterprise use. [20][31]

Sources

  1. [1] Anthropic shuts down Fable, Mythos models following Trump admin directive — Ars Technica AI (2026-06-13)
  2. [2] Reuters: Amazon’s Andy Jassy was among the people who warned senior Trump officials this week about security concerns ar… — Rohan Paul Twitter (2026-06-13)
  3. [3] Amazon CEO’s Talks With U.S. Officials Triggered Crackdown on Anthropic Models - WSJ — reactive:fable-mythos-export-control
  4. [4] The Once And Future Fable #3: Fix This Code — Zvi's AI Roundups (2026-06-17)
  5. [5] Full Letter From Commerce Secretary Howard Lutnick to Dario Amodei — Rohan Paul Twitter (2026-06-17)
  6. [6] Quoting Matteo Wong, The Atlantic — Simon Willison (2026-06-16)
  7. [7] The Fable 5 Export Controls Harm US Cyber Defense - Luta Security — reactive:fable-mythos-export-control
  8. [8] AI #173: AI Pauses — Zvi's AI Roundups (2026-06-18)
  9. [9] Perfect immunity from jailbreak is not possible even for the strongest of LLMs. — Rohan Paul Twitter (2026-06-19)
  10. [10] Anthropic Washington Talks End Without Lifting Export Controls — reactive:fable-mythos-export-control (2026-06-16)
  11. [11] The US just refused to give G7 allies special access to Anthropic’s Mythos 5 and Fable 5. — Rohan Paul Twitter (2026-06-16)
  12. [12] "They screwed us": Personality clashes sent Anthropic's models offline — Simon Willison (2026-06-15)
  13. [13] The Once And Future Fable #2 — Zvi's AI Roundups (2026-06-15)
  14. [14] Trump just told the world that a week ago he considered Anthropic a national security threat (Save this). — Milk Road AI Twitter (2026-06-19)
  15. [15] Not anymore: Trump on whether he sees Anthropic threatening national security — Rohan Paul Twitter (2026-06-20)
  16. [16] Pentagon says it is labeling AI company SF-based Anthropic a supply chain risk 'effective immediately' - ABC7 San Francisco — reactive:fable-mythos-export-control
  17. [17] RT @PsudoMike: US export control order pulled Fable 5 and Mythos 5 from Canadian teams on hours notice. No warning. No m... — reactive:fable-mythos-export-control (2026-06-20)
  18. [18] Claude Fable 5 + Mythos 5 are STILL offline. Day 9 of the export control ban. The refund window for usage credits closed... — reactive:fable-mythos-export-control (2026-06-21)
  19. [19] Technology, National Security Leaders Say Anthropic and Trump’s ‘Messy Public Breakup’ Will Harm Both — reactive:fable-mythos-export-control
  20. [20] Welcome to the AGI era of AI governance — Interconnects (2026-06-14)
  21. [21] JUST IN: Anthropic's Fable 5 and Mythos 5 are still down globally after a US export-control directive — reactive:fable-mythos-export-control (2026-06-21)
  22. [22] 🚨 Day 9 of the CLAUDE FABLE 5 BAN! — reactive:fable-mythos-export-control (2026-06-21)
  23. [23] The White House and Anthropic may have found the first serious path to restore Mythos and Fable access without pretendin… — Rohan Paul Twitter (2026-06-19)
  24. [24] Statement on the US government directive to suspend access to Fable 5 and Mythos 5 — Anthropic News (2026-06-12)
  25. [25] Scoop: Trump admin blocks foreign access to Anthropic's most powerful AI — reactive:fable-mythos-export-control
  26. [26] Amazon CEO reportedly raised Anthropic model concerns before ... — reactive:fable-mythos-export-control
  27. [27] American Government Takes Down Claude Fable — Zvi's AI Roundups (2026-06-13)
  28. [28] Claude Fable 5 and Mythos 5: Capabilities — Zvi's AI Roundups (2026-06-19)
  29. [29] A new Semafor report says the White House partly decided to place export restrictions on Anthropic’s Mythos over concern… — Rohan Paul Twitter (2026-06-15)
  30. [30] 🟡 In the crosshairs — Semafor Technology (2026-06-17)
  31. [31] Export Controls on Open-Source Models Will Not Win the AI Race — reactive:fable-mythos-export-control
  32. [32] Anthropic releases Claude Fable 5, its most powerful public AI model — reactive:fable-mythos-export-control
  33. [33] Introducing Claude Fable 5 and Claude Mythos 5 - Claude API Docs — reactive:claude-fable-5-mythos-launch